Overview
TypeLess – Auto Form Filler is a browser extension that helps users save and auto-fill web forms. This privacy policy explains how we handle your data.
Data Collection
Auto Form Filler collects and stores:
- Form data you choose to save (names, addresses, text inputs, selections)
- URLs of pages where profiles are created
- User preferences (language selection, toolbar visibility)
Data Storage
- All data is stored locally on your device using the browser's built-in storage API (Chrome/Edge)
- No cloud storage — data never leaves your browser
- No external servers — we don't operate any servers
- No transmission — your data is never sent anywhere
Data Usage
Your saved data is used solely to:
- Auto-fill web forms when you choose to apply a profile
- Display saved profiles in the extension interface
- Remember your preferences (language, toolbar state)
Third-Party Access
- No third-party sharing — your data is never shared with anyone
- No analytics — we don't track your usage
- No advertising — we don't collect data for ads
- No external APIs — we don't communicate with external services
User Control
You have full control over your data:
- Delete profiles individually using the delete button in the toolbar
- Export profiles to backup your data as JSON
- Import profiles to restore from backup
- Clear all data by uninstalling the extension
Permissions Explained
TypeLess requests the following permissions to provide its core functionality. Each permission is used only for its intended purpose and is essential for the extension to work properly.
Core Permissions
storage
PurposeSave your profiles and preferences locally on your device
Privacy100% local storage using Chrome/Edge secure storage API. Data never leaves your device.
activeTab
PurposeInteract with form fields on the current webpage
PrivacyNo background scanning, only works on explicit user action.
scripting
PurposeInject the floating toolbar and execute form-filling scripts
PrivacyNo background scripts, only user-initiated actions.
Utility Permissions
clipboardWrite
PurposeCopy profile data to clipboard for sharing between tabs/machines
PrivacyOnly writes to clipboard when you explicitly request it.
clipboardRead
PurposePaste saved profile data (JSON) from clipboard directly into TypeLess
PrivacyClipboard read only on demand; no passive monitoring or transmission.
contextMenus
PurposeAdd TypeLess options to the browser right-click menu
PrivacyNo data collection, only provides shortcuts to features.
Advanced Permissions
declarativeNetRequest
PurposeModify request headers to support the User Agent Switching feature
PrivacyNo network traffic monitored or redirected; only specific headers overwritten on demand.
declarativeNetRequestWithHostAccess
PurposeAllow declarativeNetRequest rules to apply across all URLs
PrivacyOnly activates when user triggers UA switching; no background interception.
downloads
PurposeDownload files generated by the extension
PrivacyOnly downloads files you explicitly request.
webNavigation
PurposeDetect URL changes in Single-Page Apps (SPA) to automatically refresh the profile list
PrivacyOnly listens to internal browser navigation events; no browsing history or page data is collected.
Host Permissions
<all_urls>
PurposeWork on any website containing forms
PrivacyExtension only activates when you use it; no background scanning.
Security Guarantees
Data Protection
- Local Only: All data stored exclusively on your device
- No Transmission: No data ever sent to external servers
- No Analytics: No usage tracking or behavioral monitoring
- No Background Activity: Extension only works when you interact with it
- Encrypted Storage: Profile data encrypted with AES-256-GCM before writing to storage
Permission Minimization
- Essential Only: Each permission is required for core functionality
- User Controlled: All actions require explicit user initiation
- Transparent: Clear explanations for why each permission is needed
- No Overreach: No unnecessary or excessive permissions requested
Operational Security
- No Remote Code: All functionality runs locally in your browser
- No Third Parties: No integration with external services or APIs
- No Accounts: No registration or login required
- Offline Capable: Works completely without internet connection
- DOM XSS Protection: Trusted Types API policy prevents unsafe innerHTML injection
- Sensitive Field Warning: Visual alert when saving pages with password / PIN / OTP fields
- Exclude Sensitive Fields: Option to skip saving password, PIN, and OTP fields entirely
Children's Privacy
This extension does not knowingly collect data from children under 13. It is intended for general use and treats all users the same way.
Changes to Privacy Policy
We may update this privacy policy occasionally. Changes will be posted with an updated "Last Updated" date.
Your Consent
By using TypeLess, you consent to this privacy policy.
Created by: TRONG.PRO |
Version: 1.0.5